CVE-2011-2145
published 2011-06-06CVE-2011-2145: mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before…
PriorityP424medium6.3CVSS 2.0
AVLACMAuNCNICAC
EPSS
0.32%
24.0th percentile
mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1, when a Solaris or FreeBSD guest OS is used, allows guest OS users to modify arbitrary guest OS files via unspecified vectors, related to a "procedural error."
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | open-vm-tools | < open-vm-tools 2:8.4.2+2011.08.21-471295-1 (bookworm) | open-vm-tools 2:8.4.2+2011.08.21-471295-1 (bookworm) |
| vmware | esx | — | — |
| vmware | esx | — | — |
| vmware | esx | — | — |
| vmware | esx | — | — |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
| vmware | fusion | — | — |
| vmware | fusion | — | — |
| vmware | fusion | — | — |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
| vmware | player | — | — |
| vmware | player | — | — |
| vmware | player | — | — |
| vmware | player | — | — |
| vmware | vmware_esxi | — | — |
| vmware | vmware_fusion | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_workstation | — | — |
| vmware | vsphere | — | — |
| vmware | workstation | — | — |
CVSS provenance
nvdv2.06.3MEDIUMAV:L/AC:M/Au:N/C:N/I:C/A:C
osv6.3MEDIUM
vendor_debian6.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vpj8-4chw-6r65: mount
ghsa_unreviewed·2022-05-17
CVE-2011-2145 [MEDIUM] GHSA-vpj8-4chw-6r65: mount
mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1, when a Solaris or FreeBSD guest OS is used, allows guest OS users to modify arbitrary guest OS files via unspecified vectors, related to a "procedural error."
OSV
CVE-2011-2145: mount
osv·2011-06-06·CVSS 6.3
CVE-2011-2145 [MEDIUM] CVE-2011-2145: mount
mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1, when a Solaris or FreeBSD guest OS is used, allows guest OS users to modify arbitrary guest OS files via unspecified vectors, related to a "procedural error."
VMware
VMware hosted product updates, ESX patches and VI Client update resolve multiple security issues
vendor_vmware·2011-06-02·CVSS 7.8
CVE-2009-3080 [HIGH] VMware hosted product updates, ESX patches and VI Client update resolve multiple security issues
VMSA-2011-0009: VMware hosted product updates, ESX patches and VI Client update resolve multiple security issues
a. VMware vmkernel third party e1000(e) Driver Packet Filter Bypass There is an issue in the e1000(e) Linux driver for Intel PRO/1000 adapters that allows a remote attacker to bypass packet filters. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2009-4536 to this issue. Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available. VMware Product ============= Product Version ======= Running on ======= Replace with/ Apply Patch ================= VMware Product ============= vCenter Product Version ======= any Running on ======= Windows Replace with/ Apply Patch ===
Debian
CVE-2011-2145: open-vm-tools - mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7...
vendor_debian·2011·CVSS 6.3
CVE-2011-2145 [MEDIUM] CVE-2011-2145: open-vm-tools - mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7...
mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1, when a Solaris or FreeBSD guest OS is used, allows guest OS users to modify arbitrary guest OS files via unspecified vectors, related to a "procedural error."
Scope: local
bookworm: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
bullseye: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
forky: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
sid: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
trixie: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/44840http://secunia.com/advisories/44904http://www.securityfocus.com/bid/48098http://www.securitytracker.com/id?1025601http://www.vmware.com/security/advisories/VMSA-2011-0009.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/67815https://hermes.opensuse.org/messages/8711677http://secunia.com/advisories/44840http://secunia.com/advisories/44904http://www.securityfocus.com/bid/48098http://www.securitytracker.com/id?1025601http://www.vmware.com/security/advisories/VMSA-2011-0009.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/67815https://hermes.opensuse.org/messages/8711677
2011-06-06
Published